SSGAalto / prada-protecting-against-dnn-model-stealing-attacks
Reference implementation of the PRADA model stealing defense. IEEE Euro S&P 2019.
☆32Updated 6 years ago
Alternatives and similar repositories for prada-protecting-against-dnn-model-stealing-attacks:
Users that are interested in prada-protecting-against-dnn-model-stealing-attacks are comparing it to the libraries listed below
- Prediction Poisoning: Towards Defenses Against DNN Model Stealing Attacks (ICLR '20)☆28Updated 4 years ago
- Attacking a dog vs fish classification that uses transfer learning inceptionV3☆70Updated 6 years ago
- Code for "On Adaptive Attacks to Adversarial Example Defenses"☆86Updated 4 years ago
- [ICLR'21] Dataset Inference for Ownership Resolution in Machine Learning☆32Updated 2 years ago
- ☆80Updated 3 years ago
- CVPR 2021 Official repository for the Data-Free Model Extraction paper. https://arxiv.org/abs/2011.14779☆71Updated last year
- ☆25Updated 6 years ago
- Official Implementation of ICLR 2022 paper, ``Adversarial Unlearning of Backdoors via Implicit Hypergradient''☆54Updated 2 years ago
- A simple implementation of BadNets on MNIST☆32Updated 5 years ago
- Simple yet effective targeted transferable attack (NeurIPS 2021)☆50Updated 2 years ago
- ☆10Updated 3 years ago
- This is for releasing the source code of the ACSAC paper "STRIP: A Defence Against Trojan Attacks on Deep Neural Networks"☆55Updated 4 months ago
- ☆85Updated 4 years ago
- Universal Adversarial Perturbations (UAPs) for PyTorch☆48Updated 3 years ago
- Code release for DeepJudge (S&P'22)☆51Updated 2 years ago
- Implementation of the paper "MAZE: Data-Free Model Stealing Attack Using Zeroth-Order Gradient Estimation".☆31Updated 3 years ago
- Fine-Pruning: Defending Against Backdooring Attacks on Deep Neural Networks (RAID 2018)☆48Updated 6 years ago
- ATTA (Efficient Adversarial Training with Transferable Adversarial Examples)☆35Updated 4 years ago
- ☆45Updated 4 years ago
- ABS: Scanning Neural Networks for Back-doors by Artificial Brain Stimulation☆50Updated 2 years ago
- ☆47Updated 7 months ago
- Poison Frogs! Targeted Clean-Label Poisoning Attacks on Neural Networks☆17Updated 5 years ago
- Input-aware Dynamic Backdoor Attack (NeurIPS 2020)☆36Updated 8 months ago
- Defending against Model Stealing via Verifying Embedded External Features☆36Updated 3 years ago
- Code for "Label-Consistent Backdoor Attacks"☆54Updated 4 years ago
- Code for "Neural Network Inversion in Adversarial Setting via Background Knowledge Alignment" (CCS 2019)☆46Updated 5 years ago
- ☆51Updated 3 years ago
- ☆31Updated 7 months ago
- The code is for our NeurIPS 2019 paper: https://arxiv.org/abs/1910.04749☆34Updated 5 years ago
- Privacy Risks of Securing Machine Learning Models against Adversarial Examples☆44Updated 5 years ago